Home Malware Programs Adware StormVade

StormVade

Posted: April 7, 2014

Threat Metric

Ranking: 14,785
Threat Level: 2/10
Infected PCs: 595
First Seen: April 7, 2014
Last Seen: October 6, 2023
OS(es) Affected: Windows


StormVade is adware that may show pop-up ads, deals, offers, sponsored links and discount coupons via a pop-up box on social networking and shopping-related websites, or other genuine websites that might have been compromised by adware or browser hijackers. StormVade pop-up advertisements may be shown as boxes, which may include numerous discount coupons and deals which, when clicked, may show additional pop-up advertisements on the computer that may declare to be allegedly sent to the computer user by StormVade. StormVade might be produced particularly to generate advertising income from ad clicks. StormVade may raise website traffic diverting computer users to unknown websites. StormVade may insert an unwanted add-on, browser extension or plug-in for Internet Explorer, Mozilla Firefox and Google Chrome when the PC user installs other free applications that might have packaged into their installation StormVade.

Technical Details

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{95090A47-0DCA-4881-8EE4-4207C00B854A}SOFTWARE\Microsoft\Tracing\StormVade_RASAPI32SOFTWARE\Microsoft\Tracing\StormVade_RASMANCSSOFTWARE\Microsoft\Tracing\updateStormVade_RASAPI32SOFTWARE\Microsoft\Tracing\updateStormVade_RASMANCSSOFTWARE\StormVadeSOFTWARE\Wow6432Node\Microsoft\Tracing\StormVade_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\StormVade_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Tracing\updateStormVade_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\updateStormVade_RASMANCSSOFTWARE\Wow6432Node\StormVadeSYSTEM\ControlSet001\services\eventlog\Application\Update StormVadeSYSTEM\ControlSet001\services\Update StormVadeSYSTEM\CurrentControlSet\services\eventlog\Application\Update StormVadeSYSTEM\CurrentControlSet\services\Update StormVadeHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}StormVade

Additional Information

The following directories were created:
%PROGRAMFILES%\StormVade%PROGRAMFILES(x86)%\StormVade%TEMP%\StormVade
The following URL's were detected:
StormVade
Loading...